You have an Azure subscription that contains a Microsoft Sentinel workspace named Workspace1.
From Content Hub, you deploy the Microsoft Entra solution for Microsoft Sentinel and configure a connector.
You need to analyze actions performed by users that have administrative privileges to the subscription.
Which workbook should you use?
sapphire
Highly Voted 8 months, 3 weeks agoTuitor01
8 months, 2 weeks agoTuitor01
8 months, 2 weeks agoTuitor01
8 months, 1 week agoAam9303
Most Recent 3 months, 1 week agolimpan
5 months, 1 week agoLinearB
6 months, 2 weeks agochirva
8 months, 3 weeks agoKristiannn
8 months, 4 weeks ago